Описание
In the Linux kernel, the following vulnerability has been resolved:
Bluetooth: hci_conn: hold conn reference in abort_conn_sync()
There is theoretical UAF if the conn is freed while the hci_sync task is running.
Hold refcount to avoid that.
Ссылки
EPSS
Процентиль: 17%
0.00254
Низкий
8.8 High
CVSS3
Дефекты
Связанные уязвимости
debian
4 дня назад
In the Linux kernel, the following vulnerability has been resolved: B ...
CVSS3: 8.8
github
4 дня назад
In the Linux kernel, the following vulnerability has been resolved: Bluetooth: hci_conn: hold conn reference in abort_conn_sync() There is theoretical UAF if the conn is freed while the hci_sync task is running. Hold refcount to avoid that.
EPSS
Процентиль: 17%
0.00254
Низкий
8.8 High
CVSS3